Information Security Incident Response Analyst
NTT
Information Security Incident Response Analyst
Make an impact with NTT DATA. Join a company that is pushing the boundaries of what is possible. We are renowned for our technical excellence and leading innovations, and for making a difference to our clients and society. Our workplace embraces diversity and inclusion – it's a place where you can grow, belong and thrive.
Job Description
The Information Security Incident Response Analyst supports clients during security incidents by performing technical investigations, analyzing digital forensic evidence, and assisting with containment and remediation activities. This role focuses on identifying indicators of compromise, reconstructing attacker activity, and communicating clear, actionable findings.
The analyst works as part of a global DFIR team, handling a variety of incident types across diverse environments. They contribute to process improvements, maintain strong client communication, and continue building advanced DFIR skills through hands-on investigations and internal project work.
Key Responsibilities
- Investigates security incidents by performing host, disk, memory, network, and cloud forensic analysis under established processes and guidance.
- Analyzes artifacts across Windows, Linux, and macOS systems, helping reconstruct timelines and determine root cause.
- Supports clients through containment and recovery efforts by providing technical recommendations and clear communication.
- Participates in the team's on-call rotation for urgent incident response needs.
- Completes internal and client tasks such as tabletop exercises, IR readiness assessments, basic forensic reviews, and environment hardening support.
- Identifies observable gaps and risks within client environments and recommends improvements to strengthen security posture.
- Produces accurate documentation—including investigation notes, status updates, and final reports.
- Collaborates with global DFIR and other teams and stays current on threats, attacker techniques, and emerging forensic tools.
Knowledge and Attributes
- Solid understanding of digital forensics fundamentals, including host-based analysis across major operating systems.
- Working knowledge of network forensics, cloud log analysis (e.g., Azure, AWS, GCP), and common forensic tools.
- Ability to clearly communicate technical findings to both technical and non-technical audiences.
- Strong analytical and problem-solving skills, especially during time-sensitive investigations.
- Motivated to continuously learn deeper DFIR techniques and methodologies.
Required Experience
- Proven experience in incident response and digital forensics, with capability in host-based, image, and log analysis.
- Experience using SIEM, EDR, IDS/IPS, and other security tools to triage, investigate, and respond to incidents.
- Ability to perform network analysis using tools such as Wireshark, tcpdump, and other tools.
- Experience in cybersecurity operations, consulting, DFIR services, or related technical security roles.
Academic Qualifications, Certifications
- Bachelor's degree or equivalent experience in Information Technology, Computer Science, Cybersecurity, or a related discipline (preferred).
- Relevant cybersecurity certifications such as:
- SANS GIAC Security Essentials (GSEC) or equivalent preferred.
- SANS GIAC Certified Intrusion Analyst (GCIA) or equivalent preferred.
- SANS GIAC Certified Incident Handler (GCIH) or equivalent preferred.
- Additional DFIR-related certifications are considered a plus.
Additional UK-Specific Role Requirements
- Active UK Security Clearance is required to deliver services within sensitive or regulated client environments.
- Operational Technology (OT) Incident Response & Digital Forensics
- Background and hands-on experience in OT environments.
- Experience investigating ICS/SCADA systems and industrial sectors such as manufacturing, energy, utilities, or critical infrastructure.
- Ability to collect and analyze OT forensic artifacts, interpret OT protocols and system behavior, and assess the impact of cyber incidents on physical processes.
- Certifications
- SANS OT/ICS certifications such as GICSP or GRID, IEC 62443 or equivalent required.
Workplace Type
Remote Working
About NTT DATA
NTT DATA is a $30+ billion business and technology services leader, serving 75% of the Fortune Global 100. We are committed to accelerating client success and positively impacting society through responsible innovation. We are one of the world's leading AI and digital infrastructure providers, with unmatched capabilities in enterprise-scale AI, cloud, security, connectivity, data centers and application services. Our consulting and industry solutions help organizations and society move confidently and sustainably into the digital future. As a Global Top Employer, we have experts in more than 50 countries. We also offer clients access to a robust ecosystem of innovation centers as well as established and start-up partners. NTT DATA is part of NTT Group, which invests over $3 billion each year in R&D.
Equal Opportunity Employer
NTT DATA is proud to be an Equal Opportunity Employer with a global culture that embraces diversity. We are committed to providing an environment free of unfair discrimination and harassment. We do not discriminate based on age, race, color, gender, sexual orientation, religion, nationality, disability, pregnancy, marital status, veteran status, or any other protected category. Join our growing global team and accelerate your career with us. Apply today.
Third Parties Fraudulently Posing as NTT DATA Recruiters
NTT DATA recruiters will never ask job seekers or candidates for payment or banking information during the recruitment process, for any reason. Please remain vigilant of third parties who may attempt to impersonate NTT DATA recruiters—whether in writing or by phone—in order to deceptively obtain personal data or money from you. All email communications from an NTT DATA recruiter will come from an @nttdata.com email address. If you suspect any fraudulent activity, please contact us.
- ...Position Details Position Information Recruitment/Posting Title Incident Response Analyst Job Category Staff & Executive - Information Technology... ...and timely monitoring of information security incidents throughout Rutgers' computing environment...SuggestedFull timeTemporary workSeasonal workWork at officeFlexible hoursShift work
- ## Job Description# Incident Response Analyst - FULLY REMOTE* Review current configurations of production information systems and networks against compliance standards.* Prepare for the prevention and resolution of security breaches and ensure incident response processes...SuggestedRemote work
- ...A leading information security firm in Santa Ana, California is looking for a Security Analyst to enhance its security measures and proactively manage threats. Responsibilities include monitoring security systems... ...plans, and supporting incident management processes. The...Suggested
- As a SOC Analyst (m/f/d), you will strengthen our clients’ information security through your expertise and passion for IT security... ...analyzing security-critical incidents but also helping to further develop... .... With a sense of personal responsibility and team spirit, you will be...SuggestedWork from homeFlexible hours
$93k - $125.5k
...of the way. Learn more at Job Information Job Code: 00270114 Job Family: Information... ...Job Function: Information Security Job Description We are seeking a... ...and experienced Tier 3 SOC Analyst who will also function as the Incident Response Lead. This is a hybrid technical...SuggestedFor contractorsWork at officeRemote workVisa sponsorship$75k - $100k
...located in California is seeking an investigator to join their Information Security team. This role focuses on analyzing security telemetry... ...experience, along with at least 2 years in a SOC or Incident Response role. The position offers a salary range of $75,000 to $1...- ...professional to manage and enhance the security of data and systems. This role... ...overseeing threat monitoring, coordinating responses to incidents, and collaborating with various teams... ..., and a strong background in information security. Exceptional leadership and...
- ...global technology leader based in the United States is searching for an Information Security Analyst II to enhance the security operations team. The ideal candidate will have a background in incident investigation and vulnerability remediation. Applicants should possess...Full time
- ...staffing and consulting firm is seeking an Information Security Analyst to play a critical role in protecting... ...monitoring SOC alerts, investigating incidents, and managing vulnerabilities.... ...strong background in SOC and incident response. Excellent communication and stakeholder...Remote work
$80k - $128k
...engineering, data analytics, cyber security, management, operational, logistical... ...an experienced Tier 2 Cyber Incident Response Team (CIRT) Analyst to join Peraton's Department of State... ...SOPs. Coordinate and report incident information to the Cybersecurity and Infrastructure...Interim roleInternshipWork at officeWorldwideAfternoon shift$67k - $77k
An urban public research university is seeking a candidate for a position in information security operations, focusing on endpoint security, incident management, and mentoring student workers. The role requires a Bachelor's Degree in Computer Science and four years of...- ...Family of Brands in Carrollton, TX seeks an experienced Information Security Analyst II to safeguard against cyber threats. This fully on-... ...alerts, conducting threat hunting, and assisting with incident response among other responsibilities. Candidates should have 2-...
$120k - $145k
Cape Fox Corporation is looking for an experienced Information Security Analyst (SME) to join their team in Washington, DC. The ideal candidate... ...over 4 years of experience in security analysis and incident response. Responsibilities include maintaining threat awareness,...- Morris-Hospital seeks an Information Security Analyst to support its compliance program and enhance security measures. The role involves conducting... ...reviews, risk assessments, and contributing to incident response efforts, ensuring the integrity, confidentiality, and availability...
- ...Incident Response Analyst Salisbury, NC (Remote) 90% Remote: must be within driving distance... ...response experience # MS Security Tools Suite Experience (Defender)... ...for managing threats, disseminating information, and handling, responding to, and investigating...Contract workWork experience placementRemote work
$100k - $160k
...Level 3 Incident Response Analyst page is loaded## Level 3 Incident Response Analystremote type: Fully... ...and integrate tooling that enhances security capabilities.* Facilitate incident... ...Endpoint Detection and Response (EDR), Information Technology (IT) Risk Management, Log...Contract workWork at office$40 per hour
...this role, you will evaluate AI-generated security content, solve technical cybersecurity... ..., Ireland, Australia, and New Zealand Responsibilities Evaluate AI-generated cybersecurity... ....g., penetration testing, red teaming, incident response, detection engineering, DFIR,...Hourly payFull timePart timeRemote work- ...Alignerr is seeking an Incident Response Analyst to work on cutting-edge cybersecurity AI. In this fully remote role, you will analyze realistic security incidents, contribute to AI's capability to detect cyber threats, and provide feedback that shapes AI's reasoning...Contract workRemote work
- ...Purpose: Resolve security incidents and recommend improvements... .... Execute incident response plans and contribute to scalable... .... Coordinate with Information Security Architects, Engineers... ..., GIAC Certified Intrusion Analyst (GCIA), or GIAC Certified...Remote work
- ...A company is looking for an Incident Response Analyst for a fully remote position. Key Responsibilities Review and ensure compliance of production information systems and networks Prepare for and manage security breaches, initiating incident response processes Collaborate...Remote work
- ...Senior Incident Response Analyst Location: Remote (USA-based, on-call support required) Employment Type: Full-time The Senior Incident... ...cloud (AWS/Azure) environments, contributing to scalable security enhancements and threat detection. This individual will...Full timeRemote workShift work
$40k - $140k
...Recruit - Real Estate is seeking a SOC Analyst Tier 3 to enhance cybersecurity efforts... ...conducting threat hunts, and addressing security gaps primarily in a collaborative,... ...have experience in SOC monitoring and incident response. The position provides valuable hands-on...$100k - $125k
...Senior Incident Response Analyst At Zimmer Biomet, we believe in pushing the boundaries of innovation and driving our mission forward. As... ...rotations. How You'll Create Impact Investigate security alerts and confirmed incidents; determine scope, impact, and...Remote workFlexible hours- ...Sr Analyst, Governance Risk and Compliance TransUnion is a major... ...for an Analyst, Global Incident Response to join our growing Global Incident... ...in DFIR operations, data security, privacy compliance, project... ...your recruiter will inform you of this. We do not accept...Full timeContract workPart timeBank staffRemote workFlexible hours
$30 - $39 per hour
...Overview Job Title: ITSM Incident Response Analyst Location: Remote Type: Independent Contract - Corp to Corp/1099 Start... ...Bachelor's degree or technical training in Computer Science, Information Systems Management preferred ITIL and Service Now certifications...Contract workFor contractorsWork experience placementLocal areaImmediate startRemote work- ...BlueVoyant is looking for a SOC Security Analyst L2 to enhance clients' cybersecurity in a remote setting. This role includes monitoring... ...alerts, conducting investigations, and ensuring a robust incident response. The ideal candidate should have a strong technical...Remote work
- ...Alignerr is looking for an Incident Response Analyst to analyze security events and help train AI systems designed for cybersecurity. The role involves evaluating AI-generated responses and providing expert feedback to enhance AI model precision. The ideal candidate should...Remote workFlexible hours
- ...Incident Response Analyst (AI Training) About the Role We're partnering with leading AI research labs to build the next generation of intelligent security tools - and we need experienced incident responders to help get it right. Your hands-on knowledge of real...Hourly payOngoing contractContract workFreelanceRemote workFlexible hours
- ...TrendAI™, the global AI security leader and enterprise... ...Managed Detection & Response (MDR) team at exactly... ...detection are enabling analysts to identify genuine threats... ...insights that turn incidents into lasting security... ...Science, Cybersecurity, Information Security, or related...H1bWork at officeNight shiftRotating shift3 days per week
- ...Incident Response Analyst (AI Training) About the Role We're partnering with leading AI research labs to build and refine AI systems... ...an Incident Response Analyst, you'll bring your hands-on security operations experience to help ensure these AI models think...Hourly payOngoing contractContract workFreelanceRemote workFlexible hours
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Information Security Incident Response Analyst. Be the first to apply!
- business intelligence data analyst United States
- data analyst United States
- data center analyst United States
- data analyst full time United States
- data analyst manager United States
- research data analyst United States
- data analyst bank United States
- remote data analyst intern United States
- data analyst - r python sql United States
- data solutions analyst United States

